NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87732  CVE-2017-10919  Xen through 4.8.x mishandles virtual interrupt injection, which allows guest OS users to cause a denial of service (hypervisor crash), aka XSA-223.    Medium  2017-07-18  2017-07-10  View
87731  CVE-2017-10918  Xen through 4.8.x does not validate memory allocations during certain P2M operations, which allows guest OS users to obtain privileged host OS access, aka XSA-222.    10  High  2017-07-18  2017-07-10  View
87730  CVE-2017-10917  Xen through 4.8.x does not validate the port numbers of polled event channel ports, which allows guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) or possibly obtain sensitive information, aka XSA-221.    9.4  High  2017-07-18  2017-07-10  View
87729  CVE-2017-10916  The vCPU context-switch implementation in Xen through 4.8.x improperly interacts with the Memory Protection Extensions (MPX) and Protection Key (PKU) features, which makes it easier for guest OS users to defeat ASLR and other protection mechanisms, aka XSA-220.    Medium  2017-07-18  2017-07-10  View
87728  CVE-2017-10915  The shadow-paging feature in Xen through 4.8.x mismanages page references and consequently introduces a race condition, which allows guest OS users to obtain Xen privileges, aka XSA-219.    6.8  Medium  2017-07-18  2017-07-10  View

Page 815 of 17672, showing 5 records out of 88360 total, starting on record 4071, ending on 4075

Actions